- Company Name
- APR Consulting
- Job Title
- Cybersecurity Architect
- Job Description
-
**Job Title**: Cybersecurity Architect
**Role Summary**
Design, evaluate, and govern secure enterprise architectures for on‑premises, hybrid, SaaS, and cloud environments. Collaborate with business, IT, and engineering teams to translate security requirements into scalable, compliant solutions and maintain reference architectures and guardrails.
**Expectations**
- Lead architecture design and security review for new initiatives and major changes.
- Own and continuously improve enterprise security reference models and documentation.
- Drive adoption of security principles (least privilege, defense‑in‑depth, secure‑by‑design) across teams.
- Mentor engineering and cyber personnel on secure design practices.
**Key Responsibilities**
- Serve as trusted SME, aligning security solutions with strategic objectives and risk posture.
- Partner with stakeholders to elicit, scope, and translate end‑user requirements into architecture guidance and control objectives.
- Evaluate technical feasibility and trade‑offs for proposed solutions, ensuring practicality, scalability, and consistency with enterprise standards.
- Develop and maintain security reference architectures, design patterns, and guardrails for identity, network, endpoint, application, data protection, logging, and remote access.
- Establish and enforce security architecture principles; lead architecture reviews and provide documentation of decisions, risks, and remediation paths.
- Define measurable, testable security requirements and control objectives for platforms, systems, and services.
- Collaborate with the Cybersecurity Technology team to influence product/technology roadmaps, maturity paths, and capability improvements.
- Build relationships with senior leaders to advise on secure, timely outcomes and align architecture initiatives with business priorities.
- Produce and maintain architecture documentation (standards, patterns, diagrams, decision records).
**Required Skills**
- 10+ years in IT, information security, or cybersecurity.
- Proven expertise designing enterprise security architectures (identity, network segmentation, data protection, monitoring).
- Hands‑on experience with IAM, MFA, encryption, logging/monitoring, vulnerability management, and endpoint/workload protection.
- Strong communication skills; ability to translate security requirements into technical designs and produce clear documentation.
- Experience collaborating with engineering teams and influencing adoption of security standards.
**Required Education & Certifications**
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Information Systems, or related field.
- U.S. citizenship required.
- Preferred: 3+ years of cloud cybersecurity experience; knowledge of Zero Trust, IAM, PAM, secure connectivity, secure SDLC/DevSecOps, SOC/SIEM, and frameworks such as NIST, CIS, ISO 27001.
- Certifications such as CISSP, CISM, or equivalent highly desirable.